CVE-2023-47440

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
07/12/2023
Last modified:
12/12/2023

Description

Gladys Assistant v4.27.0 and prior is vulnerable to Directory Traversal. The patch of CVE-2023-43256 was found to be incomplete, allowing authenticated attackers to extract sensitive files in the host machine.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gladysassistant:gladys_assistant:*:*:*:*:*:*:*:* 4.30.0 (excluding)